IT Risk

3 days ago


คลองเตย กรงเทพมหานคร, Thailand Mitr Phol Sugar Corp., Ltd. Full time

Bachelor's or Master's degree.
At least 8 years of experienced.
IT risk management, IT governance, IT compliance.
Develop and maintain the organisation s IT risk & compliance management framework, in accordance with good practices and present to the executive management team.
Establish and maintain effective relationships with key stakeholders, including business leaders, IT teams, and external auditors, to ensure that IT risk and compliance programs are aligned with business objectives and risks are appropriately identified, assessed, and managed.
Lead the organisation s risk assessment process, identifying and analysing IT risks, evaluating the effectiveness of existing controls, and developing risk mitigation strategies.
Develop and implement IT compliance programs, ensuring that the organisation is in compliance with relevant regulations and standards such as ISO 27001, NIST, and PDPA.
Lead the implementation of the organisation s IT governance framework, ensuring that IT policies and procedures are aligned with business objectives and regulatory requirements.
Provide guidance and training to the organisation s employees on risk and compliance issues, promoting a culture of risk awareness and responsibility.
Work with the IT teams to identify, assess, and manage vendor risks, ensuring that third-party suppliers comply with the organisation s security and privacy requirements.
Monitor the effectiveness of IT risk and compliance programs, identifying areas for improvement and implementing best practices to enhance the organisation s security posture.
Report to the executive management team, Internal Audit Office, Risk Management Committee, and Cybersecurity Committee (CSC) on the effectiveness of IT risk and compliance programs, including key risk indicators and compliance metrics.

**Qualifications**:
Bachelor's or Master's degree in Computer Science, Information Technology, Business Administration, or related fields.
At least 8 years of experience in IT risk management, IT governance, or IT compliance, with a proven track record of success in managing risk and compliance in complex organisations.
Certification in IT risk management, IT governance, or IT compliance (e.g., CRISC, CISA, CISM, CISSP, CGRC, ISO 27001 Lead Auditor, GDPR Practitioner) is strongly preferred.
Strong understanding of IT risk management frameworks and standards.
Excellent Communication skills, Analytical and Problem-solving skills.

**Job skills required**: Internal Audit, Compliance, ISO 27001


  • Security Architect

    1 week ago


    กรุงเทพมหานคร, Thailand ATA IT Full time

    **Main Objectives and Activities** - Develop and enhance security policies, standards, procedures, guideline, etc. - Integrate security architecture and manage security risks, including perform security check and assessment, risk registration to IT projects and major changes. - Evaluate project security with stakeholders. - Ensure all new solution implements...

  • Murex Senior Analyst

    3 weeks ago


    สาทร, กรุงเทพมหานคร, Thailand ATA IT Full time

    **Job description**: - Working days: Tuesday - Saturday - Working hours: 7.00 to 16.00 (Or - 11.00 to 20.00) - Application and technological support of the Murex Software - Monitor the End of Day process of Murex - Suggest improvements and automation of the EOD process - Raise the risks / issues with mitigation plans and solutions - Produce various reports...

  • Technical Lead

    3 weeks ago


    กรุงเทพมหานคร, Thailand ATA IT Full time

    **Main objectives and Summary**: - Leading and mentoring a team of software developers, providing guidance on technical issues, and ensuring that project goals are met. - Providing technical direction and ensuring that project deliverables meet the quality standards. - Collaborating with project stakeholders to identify project requirements and ensure that...